New Ubuntu Security Bypasses Enable Attackers to Exploit Kernel Vulnerabilities
April 1, 2025Apple Warns of Three Actively Exploited 0-Day Vulnerabilities
April 1, 2025New Ubuntu Security Bypasses Enable Attackers to Exploit Kernel Vulnerabilities
April 1, 2025Apple Warns of Three Actively Exploited 0-Day Vulnerabilities
April 1, 2025Severity
Medium
Analysis Summary
CVE-2024-42492 CVSS:6.7
Intel BIOS and System Firmware Update Package could allow a local authenticated attacker to gain elevated privileges on the system caused by an uncontrolled search path.
CVE-2024-39606 CVSS:6.1
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
Impact
- Privilege Escalation
- Denial of Service
Indicators of Compromise
CVE
CVE-2024-42492
CVE-2024-39606
Affected Vendors
Affected Products
- Intel Wi-Fi 7 BE200 (GaP2)
- Intel Wi-Fi 7 BE201 (FmP2)
- Intel Killer Wi-Fi 7 BE1750 (i/s)
- Intel BIOS and System Firmware Update Package
- Intel Killer Wi-Fi 7 BE1750(x/w2)
- Intel Wi-Fi 7 BE202 (MtP)
Remediation
Upgrade to the latest version, available from the Intel Website.